Пример настройки коммутатора Huawei

Напоминает конфигурацию cisco:

#
!Software Version V100R005C01SPC100
sysname SW_1-119
#
igmp-snooping enable
multicast drop-unknown
#
ndp enable
#
bpdu enable
#
lldp enable
#
undo http server enable
#
drop illegal-mac alarm
#
qos queue 2 wrr weight 0
qos queue 3 wrr weight 0
#
acl number 2005
description acl for mngmnt
rule 5 permit source 192.168.0.0 0.0.255.255
rule 30 deny
#
acl number 3000
description Bad traffic classification (Security)
rule 5 permit udp destination-port range 135 netbios-ssn
rule 10 permit tcp destination-port range 135 139
rule 15 permit tcp destination-port eq 445
acl number 3001
description Multicast (IPTV)
rule 5 permit ip destination 224.0.0.0 15.255.255.255
acl number 3002
description Local Unicast (local resources)
rule 1 permit ip destination 10.0.0.0 0.255.255.255
acl number 3003
description Internet Unicast (Internet Access)
rule 5 permit ip
#
traffic classifier internet operator and
if-match acl 3003
traffic classifier iptv operator and
if-match acl 3001
traffic classifier bad-traffic operator and
if-match acl 3000
traffic classifier local operator and
if-match acl 3002
#
traffic behavior iptv-remark
permit
remark 8021p 4
traffic behavior internet-remark
permit
remark 8021p 2
traffic behavior local-remark
permit
remark 8021p 0
traffic behavior deny
deny
#
traffic policy common-access-network-policy
classifier bad-traffic behavior deny
classifier iptv behavior iptv-remark
classifier local behavior local-remark
classifier internet behavior internet-remark
#
vlan 2
description manag
vlan 50
description iptv
igmp-snooping enable
vlan 4
description fiziki
igmp-snooping enable
multicast-vlan enable
multicast-vlan user-vlan 50
#
aaa
authentication-scheme default
authorization-scheme default
accounting-scheme default
domain default
domain default_admin
#
interface Vlanif2
ip address 192.168.1.119 255.255.240.0
#
ntp-service unicast-server 192.168.1.1 source-interface Vlanif2
#
interface Ethernet0/0/1
port hybrid pvid vlan 4
undo port hybrid vlan 1
port hybrid untagged vlan 4 50
loopback-detect enable
stp disable
traffic-policy common-access-network-policy inbound
undo lldp enable
port-isolate enable group 1
broadcast-suppression 50
#
interface Ethernet0/0/2
port hybrid pvid vlan 4
undo port hybrid vlan 1
port hybrid untagged vlan 4 50
loopback-detect enable
stp disable
traffic-policy common-access-network-policy inbound
undo lldp enable
port-isolate enable group 1
broadcast-suppression 50
#
interface Ethernet0/0/3
port hybrid pvid vlan 4
undo port hybrid vlan 1
port hybrid untagged vlan 4 50
loopback-detect enable
stp disable
traffic-policy common-access-network-policy inbound
undo lldp enable
port-isolate enable group 1
broadcast-suppression 50
#
interface Ethernet0/0/4
port hybrid pvid vlan 4
undo port hybrid vlan 1
port hybrid untagged vlan 4 50
loopback-detect enable
stp disable
traffic-policy common-access-network-policy inbound
undo lldp enable
port-isolate enable group 1
broadcast-suppression 50
#
interface Ethernet0/0/5
port hybrid pvid vlan 4
undo port hybrid vlan 1
port hybrid untagged vlan 4 50
loopback-detect enable
stp disable
traffic-policy common-access-network-policy inbound
undo lldp enable
port-isolate enable group 1
broadcast-suppression 50
#
interface Ethernet0/0/6
port hybrid pvid vlan 4
undo port hybrid vlan 1
port hybrid untagged vlan 4 50
loopback-detect enable
stp disable
traffic-policy common-access-network-policy inbound
undo lldp enable
port-isolate enable group 1
broadcast-suppression 50
#
interface Ethernet0/0/7
port hybrid pvid vlan 4
undo port hybrid vlan 1
port hybrid untagged vlan 4 50
loopback-detect enable
stp disable
traffic-policy common-access-network-policy inbound
undo lldp enable
port-isolate enable group 1
broadcast-suppression 50
#
interface Ethernet0/0/8
port hybrid pvid vlan 4
undo port hybrid vlan 1
port hybrid untagged vlan 4 50
loopback-detect enable
stp disable
traffic-policy common-access-network-policy inbound
undo lldp enable
port-isolate enable group 1
broadcast-suppression 50
#
interface Ethernet0/0/9
port hybrid pvid vlan 4
undo port hybrid vlan 1
port hybrid untagged vlan 4 50
loopback-detect enable
stp disable
traffic-policy common-access-network-policy inbound
undo lldp enable
port-isolate enable group 1
broadcast-suppression 50
#
interface Ethernet0/0/10
port hybrid pvid vlan 4
undo port hybrid vlan 1
port hybrid untagged vlan 4 50
loopback-detect enable
stp disable
traffic-policy common-access-network-policy inbound
undo lldp enable
port-isolate enable group 1
broadcast-suppression 50
#
interface Ethernet0/0/11
port hybrid pvid vlan 4
undo port hybrid vlan 1
port hybrid untagged vlan 4 50
loopback-detect enable
stp disable
traffic-policy common-access-network-policy inbound
undo lldp enable
port-isolate enable group 1
broadcast-suppression 50
#
interface Ethernet0/0/12
port hybrid pvid vlan 4
undo port hybrid vlan 1
port hybrid untagged vlan 4 50
loopback-detect enable
stp disable
traffic-policy common-access-network-policy inbound
undo lldp enable
port-isolate enable group 1
broadcast-suppression 50
#
interface Ethernet0/0/13
port hybrid pvid vlan 4
undo port hybrid vlan 1
port hybrid untagged vlan 4 50
loopback-detect enable
stp disable
traffic-policy common-access-network-policy inbound
undo lldp enable
port-isolate enable group 1
broadcast-suppression 50
#
interface Ethernet0/0/14
port hybrid pvid vlan 4
undo port hybrid vlan 1
port hybrid untagged vlan 4 50
loopback-detect enable
stp disable
traffic-policy common-access-network-policy inbound
undo lldp enable
port-isolate enable group 1
broadcast-suppression 50
#
interface Ethernet0/0/15
port hybrid pvid vlan 4
undo port hybrid vlan 1
port hybrid untagged vlan 4 50
loopback-detect enable
stp disable
traffic-policy common-access-network-policy inbound
undo lldp enable
port-isolate enable group 1
broadcast-suppression 50
#
interface Ethernet0/0/16
port hybrid pvid vlan 4
undo port hybrid vlan 1
port hybrid untagged vlan 4 50
loopback-detect enable
stp disable
traffic-policy common-access-network-policy inbound
undo lldp enable
port-isolate enable group 1
broadcast-suppression 50
#
interface Ethernet0/0/17
port hybrid pvid vlan 4
undo port hybrid vlan 1
port hybrid untagged vlan 4 50
loopback-detect enable
stp disable
traffic-policy common-access-network-policy inbound
undo lldp enable
port-isolate enable group 1
broadcast-suppression 50
#
interface Ethernet0/0/18
port hybrid pvid vlan 4
undo port hybrid vlan 1
port hybrid untagged vlan 4 50
loopback-detect enable
stp disable
traffic-policy common-access-network-policy inbound
undo lldp enable
port-isolate enable group 1
broadcast-suppression 50
#
interface Ethernet0/0/19
port hybrid pvid vlan 4
undo port hybrid vlan 1
port hybrid untagged vlan 4 50
loopback-detect enable
stp disable
traffic-policy common-access-network-policy inbound
undo lldp enable
port-isolate enable group 1
broadcast-suppression 50
#
interface Ethernet0/0/20
port hybrid pvid vlan 4
undo port hybrid vlan 1
port hybrid untagged vlan 4 50
loopback-detect enable
stp disable
traffic-policy common-access-network-policy inbound
undo lldp enable
port-isolate enable group 1
broadcast-suppression 50
#
interface Ethernet0/0/21
port hybrid pvid vlan 4
undo port hybrid vlan 1
port hybrid untagged vlan 4 50
loopback-detect enable
stp disable
traffic-policy common-access-network-policy inbound
undo lldp enable
port-isolate enable group 1
broadcast-suppression 50
#
interface Ethernet0/0/22
port hybrid pvid vlan 4
undo port hybrid vlan 1
port hybrid untagged vlan 4 50
loopback-detect enable
stp disable
traffic-policy common-access-network-policy inbound
undo lldp enable
port-isolate enable group 1
broadcast-suppression 50
#
interface Ethernet0/0/23
port hybrid pvid vlan 4
undo port hybrid vlan 1
port hybrid untagged vlan 4 50
loopback-detect enable
stp disable
traffic-policy common-access-network-policy inbound
undo lldp enable
port-isolate enable group 1
broadcast-suppression 50
#
interface Ethernet0/0/24
port hybrid pvid vlan 4
undo port hybrid vlan 1
port hybrid untagged vlan 4 50
loopback-detect enable
stp disable
traffic-policy common-access-network-policy inbound
undo lldp enable
port-isolate enable group 1
broadcast-suppression 50
#
interface GigabitEthernet0/0/1
port link-type trunk
undo port trunk allow-pass vlan 1
port trunk allow-pass vlan 2 4 50
loopback-detect enable
ndp enable
combo-port fiber
trust 8021p
#
interface GigabitEthernet0/0/2
port link-type trunk
undo port trunk allow-pass vlan 1
port trunk allow-pass vlan 2 4 50
loopback-detect enable
ndp enable
combo-port fiber
trust 8021p
#
interface NULL0
#
ip route-static 0.0.0.0 0.0.0.0 192.168.1.1
#
snmp-agent
snmp-agent local-engineid 000007DB7F00000100001E5D
snmp-agent community read public acl 2005
snmp-agent community write 1nf0sys acl 2005
snmp-agent sys-info version all
#
user-interface con 0
idle-timeout 0 0
user-interface vty 0 4
acl 2005 inbound
set authentication password cipher <password>
user privilege level 3
#